Forem

Security

Hopefully not just an afterthought!

Posts

đź‘‹ Sign in for the ability to sort posts by relevant, latest, or top.
I converted 10 popular APIs to MCP tools. 7 would let an agent delete your data with zero guardrails.

I converted 10 popular APIs to MCP tools. 7 would let an agent delete your data with zero guardrails.

1
Comments
3 min read
The Anthropic SDK Depends on 2 CRITICAL Packages You've Never Heard Of

The Anthropic SDK Depends on 2 CRITICAL Packages You've Never Heard Of

Comments
2 min read
Stop Blind-CURLing in Production: How I Built an Audit Layer for API Operations

Stop Blind-CURLing in Production: How I Built an Audit Layer for API Operations

Comments
3 min read
Stop Storing JWTs in Local Storage: The HttpOnly Cookie Architecture 🛡️
Cover image for Stop Storing JWTs in Local Storage: The HttpOnly Cookie Architecture 🛡️

Stop Storing JWTs in Local Storage: The HttpOnly Cookie Architecture 🛡️

Comments
2 min read
The Ungoverned Agent Problem: Why MCP Alone Is Not Enough

The Ungoverned Agent Problem: Why MCP Alone Is Not Enough

Comments
4 min read
Building on Visa TAP? Here's the Trust Layer Above It.

Building on Visa TAP? Here's the Trust Layer Above It.

Comments
3 min read
Why Manual Triage Beats Automated Scanners in Modern App Security

Why Manual Triage Beats Automated Scanners in Modern App Security

Comments
1 min read
AI Governance: One Repo, One Smoke Tool, and a Green CI Run

AI Governance: One Repo, One Smoke Tool, and a Green CI Run

1
Comments
4 min read
Why I don’t trust my own deployments (and why you should audit your Security Headers)
Cover image for Why I don’t trust my own deployments (and why you should audit your Security Headers)

Why I don’t trust my own deployments (and why you should audit your Security Headers)

Comments
2 min read
From Isolated Team Agents to an Enterprise Agent Harness
Cover image for From Isolated Team Agents to an Enterprise Agent Harness

From Isolated Team Agents to an Enterprise Agent Harness

Comments
9 min read
Stop Copy-Pasting kubectl Commands to Debug Pods

Stop Copy-Pasting kubectl Commands to Debug Pods

Comments
3 min read
Why Every AI Agent Needs a Cryptographic Identity

Why Every AI Agent Needs a Cryptographic Identity

Comments 1
4 min read
🚀 Built ScreenGuard Pro — a real-time screen privacy tool

🚀 Built ScreenGuard Pro — a real-time screen privacy tool

Comments
1 min read
9 Seconds: An AI Coding Agent Deleted a Production Database
Cover image for 9 Seconds: An AI Coding Agent Deleted a Production Database

9 Seconds: An AI Coding Agent Deleted a Production Database

1
Comments 3
5 min read
Math.random() Non-Compliant with NIST 800-63B: Adopt Cryptographically Secure Random Number Generators

Math.random() Non-Compliant with NIST 800-63B: Adopt Cryptographically Secure Random Number Generators

Comments
7 min read
đź‘‹ Sign in for the ability to sort posts by relevant, latest, or top.